URLhaus Database

You are currently viewing the URLhaus database entry for http://42.112.26.36/zd/mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3472011
URL: http://42.112.26.36/zd/mips
URL Status:Offline
Host: 42.112.26.36
Date added:2025-03-09 07:28:07 UTC
Last online:2025-04-07 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-03-09 07:29:08 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:29 days, 13 hours, 8 minutes Bad (down since 2025-04-07 20:37:43 UTC)
Tags:elf mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-26n/aelf fba7bebf259ea5904705b2ce98b73a7ef017b7cf64565779a1afdfc437a46ef0n/a
2025-03-15n/aelf 6ae090d12adb78441bf809f6de2fa8f4e1146a42cf257ce738d09bd0028088f6n/aMirai
2025-03-11n/aelf 4f92f5d9e30af41e052d65ca13e7863aae7f7b6859daa050ab67cd2475065411n/aMirai
2025-03-09n/aelf 6fad9b847c5f0bbcbd73493c4104db815a12b324245820cfc4ecb4406cdbc5d3Virustotal results 19.05%Mirai